[153128] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Cisco Security Advisory: Cisco IOS XR Software Route Processor Denial

daemon@ATHENA.MIT.EDU (Cisco Systems Product Security Inc)
Wed May 30 12:11:22 2012

From: Cisco Systems Product Security Incident Response Team <psirt@cisco.com>
To: nanog@nanog.org
Date: Wed, 30 May 2012 12:09:11 -0400
Cc: psirt@cisco.com
Reply-To: psirt@cisco.com
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Cisco IOS XR Software Route Processor Denial of Service Vulnerability

Advisory ID: cisco-sa-20120530-iosxr

Revision 1.0

For Public Release 2012 May 30 16:00  UTC (GMT)
+---------------------------------------------------------------------
 
Summary
=======

Cisco IOS XR Software contains a vulnerability when handling crafted
packets that may result in a denial of service condition. The
vulnerability only exists on Cisco 9000 Series Aggregation Services
Routers (ASR) Route Switch Processor (RSP440) and Cisco Carrier
Routing System (CRS) Performance Route Processor (PRP). The
vulnerability is a result of improper handling of crafted packets and
could cause the route processor, which processes the packets, to be
unable to transmit packets to the fabric.

Cisco has released free software updates that address this
vulnerability. This advisory is available at the following link:
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120530-iosxr
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.17 (Darwin)
Comment: GPGTools - http://gpgtools.org

iF4EAREIAAYFAk/GMvQACgkQQXnnBKKRMNDF2wD6A5yZWmZgCmk5x+RJ2mxIXzcW
RXsu7/NENNspgbOJk2wA/RIJ9Fbzy+QZTRuQtg2vX0vCOhterMOVmN3Ue0VCzj52
=lCxE
-----END PGP SIGNATURE-----


home help back first fref pref prev next nref lref last post